
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
winnet32b inet32upd
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
winnet32b inet32upd
Zdravím mám problém po spuštění PC mi ve správci úloh běží tyto dvě úlohy winnet32b inet32upd a zabírají 100% výkonu procesoru potřeboval bych pomoct tyto procesy nějak odstranit ale potřeboval bych trochu laidský návod moc se nevyznám v nějakých speciálních výrazech. Předem děkuji
tady je log z FRST
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 14-05-2015 02
Ran by home (administrator) on PC on 16-05-2015 09:40:47
Running from C:\Users\home\Desktop
Loaded Profiles: home (Available profiles: home)
Platform: Windows 8.1 Pro (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
() C:\Windows\SysWOW64\ASGT.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
(ASUS) C:\Program Files (x86)\ASUS\GPU Tweak\GPUTweak.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\APRP\aprp.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(ASUS) C:\Program Files (x86)\ASUS\GPU Tweak\Monitor.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(NVIDIA Corporation) C:\Users\home\AppData\Local\NVIDIA\NvBackend\ApplicationOntology\NvOAWrapperCache.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
() C:\Users\home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\conhost32.exe
() C:\Users\home\AppData\Roaming\Microsoft\Networking\inet32upd.exe
() C:\Users\home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\conhost64.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
() C:\Users\home\AppData\Roaming\Microsoft\Networking\winnet32b.exe
(Oracle Corporation) C:\Users\home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Photoshop CS5 Crack.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2685072 2015-05-01] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7203032 2014-09-03] (Realtek Semiconductor)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [500208 2010-03-06] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AdobeCS5ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [406992 2010-02-22] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1022152 2014-12-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [334896 2015-04-30] (Oracle Corporation)
HKU\S-1-5-21-2893419502-1249477774-2242879243-1001\...\Run: [AdobeBridge] => [X]
Startup: C:\Users\home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Photoshop CS5 Crack.exe [2015-05-15] (Oracle Corporation)
Startup: C:\Users\home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\conhost32.exe [2015-05-15] ()
Startup: C:\Users\home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\conhost64.exe [2015-05-15] ()
Startup: C:\Users\home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Grand Theft Auto V (2015) + DLC's - FULL UNLOCKED - RETAIL.lnk [2015-04-21]
ShortcutTarget: Grand Theft Auto V (2015) + DLC's - FULL UNLOCKED - RETAIL.lnk -> C:\ProgramData\{f31b9353-e84d-146c-f31b-b9353e844d4f}\Grand Theft Auto V (2015) + DLC's - FULL UNLOCKED - RETAIL.exe (No File)
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKU\S-1-5-21-2893419502-1249477774-2242879243-1001\Software\Microsoft\Internet Explorer\Main,Start Page = http://google.cz/
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dll [2015-05-15] (Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dll [2015-05-15] (Oracle Corporation)
Tcpip\..\Interfaces\{C1C6FDE8-6265-4941-B184-76F8227E6FE9}: [NameServer] 62.129.50.20,85.135.32.100
FireFox:
========
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.45.2 -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\dtplugin\npDeployJava1.dll [2015-05-15] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.45.2 -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\plugin2\npjp2.dll [2015-05-15] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2015-04-08] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2015-04-08] (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-05] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-05] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2015-05-01] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-2893419502-1249477774-2242879243-1001: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\home\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2009-11-30] (Unity Technologies ApS)
Chrome:
=======
CHR dev: Chrome dev build detected! <======= ATTENTION
CHR HomePage: Default -> hxxp://www.google.cz/
CHR StartupUrls: Default -> "hxxp://www.google.com/", "hxxp://www.search.ask.com/?o=APN11459&gct=hp&d ... 34-363&t=4"
CHR DefaultSuggestURL: Default -> {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:inputType}{google:cursorPosition}{google:currentPageUrl}{google:pageClassification}{google:searchVersion}{google:sessionToken}{google:prefetchQuery}sugkey={google:suggestAPIKeyParameter}
CHR Profile: C:\Users\home\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2014-09-04]
CHR Extension: (Google Docs) - C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-09-04]
CHR Extension: (Google Drive) - C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-09-04]
CHR Extension: (YouTube) - C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-09-04]
CHR Extension: (Steam inventory helper) - C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Extensions\cmeakgjggjdlcpncigglobpjbkabhmjl [2014-12-18]
CHR Extension: (Google Search) - C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-09-04]
CHR Extension: (Google Sheets) - C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2014-09-04]
CHR Extension: (Google Wallet) - C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-09-04]
CHR Extension: (Gmail) - C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-09-04]
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 ASGT; C:\Windows\SysWOW64\ASGT.exe [55296 2012-01-17] () [File not signed]
S3 BthHFSrv; C:\Windows\System32\BthHFSrv.dll [321024 2013-08-22] (Microsoft Corporation)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1152656 2015-05-01] (NVIDIA Corporation)
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160 2015-04-14] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1080120 2015-04-14] (Malwarebytes Corporation)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1884304 2015-05-01] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [22997648 2015-05-01] (NVIDIA Corporation)
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [5448976 2015-04-17] (TeamViewer GmbH)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366520 2015-02-04] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2015-02-04] (Microsoft Corporation)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R3 CMUAC; C:\Windows\system32\DRIVERS\Headset6400x1.SYS [387072 2013-10-03] (A4Tech Inc.)
R3 IOMap; C:\Windows\system32\drivers\IOMap64.sys [24824 2013-07-02] (ASUSTeK Computer Inc.)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-04-14] (Malwarebytes Corporation)
R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [136408 2015-05-16] (Malwarebytes Corporation)
R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [64216 2015-04-14] (Malwarebytes Corporation)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19600 2015-05-01] (NVIDIA Corporation)
R3 NVVADARM; C:\Windows\system32\drivers\nvvadarm.sys [39056 2015-04-09] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [38032 2014-11-22] (NVIDIA Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2015-02-04] (Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-05-16 09:40 - 2015-05-16 09:40 - 00029696 _____ () C:\Users\home\AppData\Local\MSGBOX.EXE
2015-05-16 09:40 - 2015-05-16 09:40 - 00015327 _____ () C:\Users\home\Desktop\LM.bat
2015-05-16 09:21 - 2015-05-16 09:38 - 00136408 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-05-16 09:21 - 2015-05-16 09:21 - 00001118 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-05-16 09:21 - 2015-05-16 09:21 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-05-16 09:21 - 2015-05-16 09:21 - 00000000 ____D () C:\ProgramData\Malwarebytes
2015-05-16 09:21 - 2015-05-16 09:21 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-05-16 09:21 - 2015-04-14 09:38 - 00064216 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2015-05-16 09:21 - 2015-04-14 09:37 - 00107736 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2015-05-16 09:21 - 2015-04-14 09:37 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2015-05-16 09:18 - 2015-05-16 09:19 - 21546080 _____ (Malwarebytes Corporation ) C:\Users\home\Downloads\mbam-setup-2.1.6.1022.exe
2015-05-15 23:36 - 2015-05-15 23:36 - 00000472 _____ () C:\Users\home\Downloads\FixList (1).zip
2015-05-15 23:35 - 2015-05-15 23:35 - 00037864 _____ () C:\Users\home\Desktop\Addition.txt
2015-05-15 23:34 - 2015-05-16 09:40 - 00012992 _____ () C:\Users\home\Desktop\FRST.txt
2015-05-15 23:33 - 2015-05-15 23:33 - 00112640 _____ (forum.viry.cz) C:\Users\home\Downloads\FRSTLauncher (2).exe
2015-05-15 23:33 - 2015-05-15 23:33 - 00112640 _____ (forum.viry.cz) C:\Users\home\Desktop\FRSTLauncher (2).exe
2015-05-15 23:32 - 2015-05-15 23:32 - 00112640 _____ (forum.viry.cz) C:\Users\home\Downloads\Nepotvrzeno 215233.crdownload
2015-05-15 23:31 - 2015-05-15 23:31 - 00112640 _____ (forum.viry.cz) C:\Users\home\Downloads\Nepotvrzeno 827992.crdownload
2015-05-15 23:31 - 2015-05-15 23:30 - 02106368 _____ (Farbar) C:\Users\home\Desktop\FRST64.exe
2015-05-15 23:30 - 2015-05-16 09:40 - 00000000 ____D () C:\FRST
2015-05-15 23:30 - 2015-05-15 23:30 - 02106368 _____ (Farbar) C:\Users\home\Downloads\FRST64.exe
2015-05-15 23:28 - 2015-05-15 23:28 - 00000472 _____ () C:\Users\home\Downloads\FixList.zip
2015-05-15 22:28 - 2015-05-15 22:28 - 00000952 _____ () C:\Users\home\Desktop\Play Minecraft.lnk
2015-05-15 22:28 - 2015-05-15 22:28 - 00000000 ____D () C:\Users\home\AppData\Local\TagCraftMC
2015-05-15 22:20 - 2015-05-15 22:27 - 135427653 _____ (TagCraftMC ) C:\Users\home\Downloads\Minecraft_1.8.3_Auto_Installer.exe
2015-05-15 22:17 - 2015-05-15 22:17 - 00562272 _____ (Oracle Corporation) C:\Users\home\Downloads\chromeinstall-8u45.exe
2015-05-15 22:16 - 2015-05-15 22:16 - 00327680 _____ () C:\Users\home\Downloads\Minecraft-1.8.3.exe
2015-05-15 22:09 - 2015-05-15 22:10 - 06239851 _____ () C:\Users\home\Downloads\Minecraft-1-8-3-plna-hra-zdarma-CZ.zip
2015-05-15 22:08 - 2015-05-15 22:08 - 06239853 _____ () C:\Users\home\Downloads\Minecraft-1.8.3-plna-hra-zdarma-CZ-.zip
2015-05-15 22:07 - 2015-05-16 01:00 - 00000000 ____D () C:\Users\home\AppData\Roaming\.minecraft
2015-05-15 09:53 - 2015-05-15 09:53 - 00000000 ____D () C:\ProgramData\ceae573e00006040
2015-05-15 09:52 - 2015-05-15 09:52 - 00000000 _____ () C:\Users\home\AppData\Local\Temp.dat
2015-05-15 09:42 - 2015-05-15 09:42 - 00006538 _____ () C:\Users\home\Downloads\megafont.zip
2015-05-15 09:32 - 2015-05-15 09:32 - 01821663 _____ () C:\Users\home\Downloads\Adobe-Photoshop-CS5-Crack.rar
2015-05-14 22:40 - 2015-05-15 09:52 - 48657168 _____ () C:\Users\home\Downloads\avatar.psd
2015-05-12 00:26 - 2015-05-12 00:26 - 05963600 _____ () C:\Users\home\ts3_recording_15_05_12_0_26_2.wav
2015-05-10 11:46 - 2013-07-02 16:29 - 00024824 _____ (ASUSTeK Computer Inc.) C:\Windows\system32\Drivers\IOMap64.sys
2015-05-09 17:20 - 2015-05-09 17:20 - 00000000 ____D () C:\Users\home\Documents\BeamNG.drive
2015-05-09 17:19 - 2015-05-09 17:25 - 187642614 _____ () C:\Users\home\Downloads\BeamNG-Techdemo-v2.1.zip
2015-05-09 17:03 - 2015-05-09 17:03 - 01081072 _____ (Unity Technologies ApS) C:\Users\home\Downloads\UnityWebPlayer (1).exe
2015-05-09 15:08 - 2015-05-09 15:08 - 07973496 _____ (TeamViewer GmbH) C:\Users\home\Downloads\TeamViewer_Setup_cs-iuu (1).exe
2015-04-28 11:11 - 2015-04-28 11:11 - 00001998 _____ () C:\Users\home\Desktop\Vítejte u registrace produktu ASUS.lnk
2015-04-26 15:04 - 2015-04-26 15:04 - 00200174 _____ () C:\Users\home\Downloads\Nazvoslovi_-_ARENY.odp
2015-04-23 18:20 - 2015-04-23 18:20 - 00000022 _____ () C:\Windows\GPU-Z.INI
2015-04-23 18:14 - 2015-04-23 18:14 - 00001066 _____ () C:\Users\Public\Desktop\GPUTweakStreaming.lnk
2015-04-23 18:14 - 2015-04-23 18:14 - 00001059 _____ () C:\Users\Public\Desktop\ASUS GPU Tweak.lnk
2015-04-23 18:14 - 2015-04-23 18:14 - 00000032 _____ () C:\setup.log
2015-04-23 18:14 - 2015-04-23 18:14 - 00000000 ____D () C:\Windows\System32\Tasks\ASUS
2015-04-23 18:14 - 2015-04-23 18:14 - 00000000 ____D () C:\Windows\Downloaded Installations
2015-04-23 18:14 - 2015-04-23 18:14 - 00000000 ____D () C:\Users\home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ASUS
2015-04-23 18:14 - 2015-04-23 18:14 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS
2015-04-23 18:14 - 2015-04-23 18:14 - 00000000 ____D () C:\Program Files (x86)\ASUS
2015-04-23 08:21 - 2015-04-23 08:21 - 00456973 _____ () C:\Users\home\Downloads\Grand Theft Auto V 8, 8.1 & 10.rar
2015-04-23 08:07 - 2015-04-14 08:09 - 56382096 _____ (Rockstar Games) C:\Users\home\Desktop\Social Club v1.1.5.6 Setup.exe
2015-04-23 08:00 - 2015-04-23 08:06 - 447096881 _____ () C:\Users\home\Downloads\Grand.Theft.Auto.V.Update.1.and.Crack.v2-3DM.zip
2015-04-23 07:46 - 2015-04-23 07:47 - 09659782 _____ () C:\Users\home\Downloads\GTA V - Crack Only.rar
2015-04-23 07:27 - 2015-04-22 18:36 - 00000080 _____ () C:\Users\home\AppData\Local剜捯獫慴慇敭屳呇⁁屖湥楴汴浥湥湩潦
2015-04-23 07:27 - 2015-04-16 00:10 - 00000000 ____D () C:\Program Files\Rockstar Games
2015-04-23 07:27 - 2015-04-16 00:10 - 00000000 ____D () C:\Program Files (x86)\Rockstar Games
2015-04-23 07:24 - 2015-04-23 07:24 - 00016323 _____ () C:\Users\home\Downloads\[kickass.to]3dmgame.grand.theft.auto.v.update.1.and.crack.v2.3dm (1).torrent
2015-04-23 07:22 - 2015-04-23 07:22 - 00016323 _____ () C:\Users\home\Downloads\[kickass.to]3dmgame.grand.theft.auto.v.update.1.and.crack.v2.3dm.torrent
2015-04-23 07:10 - 2015-04-23 08:19 - 00000000 ____D () C:\Users\home\Documents\Rockstar Games
2015-04-23 07:10 - 2015-04-23 07:10 - 00000000 ____D () C:\Users\home\AppData\Local\Rockstar Games
2015-04-22 21:36 - 2015-04-22 21:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rockstar Games
2015-04-22 18:27 - 2015-05-06 17:07 - 00001397 _____ () C:\Users\Public\Desktop\GeForce Experience.lnk
2015-04-22 18:26 - 2015-04-22 18:26 - 00002153 _____ () C:\Users\Public\Desktop\3D Vision Photo Viewer.lnk
2015-04-22 18:26 - 2015-04-08 22:32 - 00560968 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe
2015-04-22 18:24 - 2015-04-09 02:58 - 01557648 _____ (NVIDIA Corporation) C:\Windows\system32\nvmcvadgenco64.dll
2015-04-22 18:24 - 2015-04-09 02:58 - 00100680 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcaparm.dll
2015-04-22 18:24 - 2015-04-09 02:58 - 00039056 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvadarm.sys
2015-04-22 18:20 - 2015-04-22 18:21 - 283201840 _____ (NVIDIA Corporation) C:\Users\home\Downloads\350.12-desktop-win8-win7-winvista-64bit-international-whql.exe
2015-04-22 18:13 - 2015-04-22 18:13 - 00000000 ____D () C:\Windows\LastGood
2015-04-22 07:42 - 2015-04-22 07:42 - 00032111 _____ () C:\Users\home\Downloads\[kickass.to]grand.theft.auto.v.update.3.v1.0.33502.and.crack.v4.3dm.torrent
2015-04-22 07:41 - 2015-04-22 07:41 - 00031991 _____ () C:\Users\home\Downloads\[kickass.to]3dmgame.grand.theft.auto.v.update.2.and.crack.3dm.torrent
2015-04-21 22:05 - 2015-04-21 22:05 - 00187479 _____ () C:\Users\home\Downloads\GTAV-utoerrent-PC-Tutoriales y de todo gamer-repack (1)
2015-04-21 22:05 - 2015-04-21 22:05 - 00187479 _____ () C:\Users\home\Downloads\GTAV-utoerrent-PC-Tutoriales y de todo gamer-repack
2015-04-21 22:05 - 2015-04-21 22:05 - 00000722 _____ () C:\Users\home\Downloads\GTA V+CRACK.txt
2015-04-21 22:01 - 2015-05-15 09:20 - 00000000 ____D () C:\ProgramData\3751633053251181686
2015-04-21 22:01 - 2015-04-21 22:01 - 00162454 _____ () C:\Users\home\Downloads\[kickass.to]grand.theft.auto.v.2015.dlc.s.full.unlocked.retail.torrent
2015-04-21 22:01 - 2015-04-21 22:01 - 00000000 ____D () C:\Program Files (x86)\SaalePllUs
2015-04-21 22:00 - 2015-05-16 09:33 - 00000000 ____D () C:\ProgramData\{f31b9353-e84d-146c-f31b-b9353e844d4f}
2015-04-21 22:00 - 2015-05-15 22:00 - 00000444 _____ () C:\Windows\Tasks\Bidaily Synchronize Task.job
2015-04-21 22:00 - 2015-04-21 22:00 - 00003338 _____ () C:\Windows\System32\Tasks\Bidaily Synchronize Task
2015-04-21 22:00 - 2015-04-21 22:00 - 00001947 _____ () C:\Users\home\Desktop\Grand Theft Auto V (2015) + DLC's - FULL UNLOCKED - RETAIL.lnk
2015-04-21 21:59 - 2015-04-21 22:00 - 00385536 _____ () C:\Users\home\Downloads\Grand Theft Auto V (2015) + DLC's - FULL UNLOCKED - RETAIL.exe
2015-04-21 21:48 - 2015-04-21 21:48 - 20197233 _____ () C:\Users\home\Downloads\GTA-5-PC-Game-Downloader-Fix-Patch-Full-Unlocked.rar
2015-04-21 19:40 - 2015-04-21 19:40 - 00154171 _____ () C:\Users\home\Downloads\Grand Theft Auto V (2015) + DLC's - FULL UNLOCKED +CRACK.torrent
2015-04-21 19:39 - 2015-04-21 19:39 - 00017552 _____ () C:\Users\home\Downloads\Grand.Theft.Auto.V.(2012).RELOADED.torrent
2015-04-21 17:32 - 2015-04-21 17:34 - 00000000 ____D () C:\Windows\system32\appmgmt
2015-04-16 15:29 - 2015-04-16 15:30 - 00638976 _____ () C:\Users\home\Downloads\Detection.msi
2015-04-16 00:24 - 2015-04-16 00:25 - 00000000 ____D () C:\Windows\LastGood.Tmp
2015-04-16 00:23 - 2015-04-09 02:58 - 31570064 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 30397072 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 25375048 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 24053576 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 15818528 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 15716232 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 14006752 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 12852784 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 11380728 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 10423952 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2015-04-16 00:23 - 2015-04-09 02:58 - 02896528 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 02573456 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 01895568 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6435012.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 01557648 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6435012.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 01086424 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 01047368 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 01037640 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 00970568 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 00962192 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 00927440 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 00849552 _____ () C:\Windows\system32\nvmcumd.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 00499344 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 00402576 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 00390472 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 00346256 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 00175880 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 00154256 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 00150648 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 00128512 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2015-04-16 00:20 - 2015-04-16 00:20 - 00000739 _____ () C:\Users\home\Desktop\Launcher – zástupce.lnk
2015-04-16 00:02 - 2015-04-16 00:02 - 00031736 _____ () C:\Users\home\Downloads\[kickass.to]3dmgame.grand.theft.auto.v.update.3.v1.0.335.2.and.crack.v4.3dm.7z.torrent
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-05-16 09:41 - 2014-12-31 15:19 - 00000892 _____ () C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job
2015-05-16 09:39 - 2014-12-31 15:19 - 00000914 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-05-16 09:38 - 2014-09-04 17:36 - 00000962 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-05-16 09:38 - 2014-09-03 14:16 - 00000000 ____D () C:\ProgramData\NVIDIA
2015-05-16 09:38 - 2013-08-22 16:46 - 00067089 _____ () C:\Windows\setupact.log
2015-05-16 09:38 - 2013-08-22 16:45 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-05-16 09:37 - 2013-09-30 05:39 - 01962823 _____ () C:\Windows\WindowsUpdate.log
2015-05-16 09:37 - 2013-09-29 21:09 - 00109874 _____ () C:\Windows\PFRO.log
2015-05-16 09:37 - 2013-08-22 15:25 - 00262144 ___SH () C:\Windows\system32\config\BBI
2015-05-16 09:34 - 2013-09-30 05:52 - 00003942 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{E5F34E29-9037-41AA-80DE-74D3938F68C1}
2015-05-16 09:32 - 2013-08-22 16:44 - 05040912 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-05-16 09:27 - 2013-09-30 05:45 - 00003598 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2893419502-1249477774-2242879243-1001
2015-05-16 01:01 - 2014-09-16 17:34 - 00000000 ____D () C:\Users\home\AppData\Roaming\TS3Client
2015-05-16 01:00 - 2014-09-04 17:36 - 00000966 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-05-16 00:00 - 2013-08-22 17:36 - 00000000 ____D () C:\Windows\system32\sru
2015-05-15 22:18 - 2015-02-05 19:49 - 00097888 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2015-05-15 22:18 - 2015-02-05 19:48 - 00000000 ____D () C:\Program Files (x86)\Java
2015-05-15 22:09 - 2014-09-30 16:45 - 00000000 ____D () C:\Users\home\AppData\Roaming\NVIDIA
2015-05-15 10:25 - 2014-12-13 17:57 - 00000000 ____D () C:\Users\home\AppData\Roaming\OBS
2015-05-14 22:42 - 2014-12-28 21:23 - 00000000 ____D () C:\Users\home\AppData\Local\Battle.net
2015-05-14 22:36 - 2015-03-20 19:26 - 00000000 ____D () C:\Users\home\Desktop\Adobe CS5
2015-05-14 21:42 - 2014-12-28 21:22 - 00000000 ____D () C:\Program Files (x86)\Battle.net
2015-05-14 21:14 - 2014-09-04 08:44 - 00002457 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2015-05-14 10:57 - 2013-08-22 17:36 - 00000000 ____D () C:\Windows\AppReadiness
2015-05-12 00:26 - 2013-09-30 05:40 - 00000000 ____D () C:\Users\home
2015-05-11 12:33 - 2015-01-14 21:33 - 00000000 ____D () C:\Users\home\Desktop\referáty
2015-05-10 21:22 - 2015-01-28 16:24 - 00000000 ____D () C:\Users\home\AppData\Local\CrashDumps
2015-05-09 15:08 - 2015-02-18 22:50 - 00001059 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 10.lnk
2015-05-09 15:08 - 2015-02-18 22:50 - 00001047 _____ () C:\Users\Public\Desktop\TeamViewer 10.lnk
2015-05-09 15:08 - 2015-02-18 22:50 - 00000000 ____D () C:\Program Files (x86)\TeamViewer
2015-05-01 18:51 - 2014-09-03 14:19 - 01316184 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
2015-05-01 18:51 - 2014-09-03 14:19 - 01316000 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspbridge.dll
2015-05-01 18:50 - 2014-09-03 14:19 - 01756424 _____ (NVIDIA Corporation) C:\Windows\system32\nvspbridge64.dll
2015-05-01 18:50 - 2014-09-03 14:19 - 01570672 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll
2015-04-23 18:14 - 2014-09-03 14:40 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2015-04-23 07:33 - 2014-09-04 09:22 - 00097862 _____ () C:\Windows\DirectX.log
2015-04-22 18:26 - 2014-09-03 14:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2015-04-22 18:26 - 2014-09-03 14:15 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation
2015-04-22 18:26 - 2014-09-03 14:15 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation
2015-04-22 14:48 - 2013-09-30 06:20 - 01745984 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-04-22 14:48 - 2013-09-30 05:57 - 00738682 _____ () C:\Windows\system32\perfh005.dat
2015-04-22 14:48 - 2013-09-30 05:57 - 00151404 _____ () C:\Windows\system32\perfc005.dat
2015-04-21 17:34 - 2014-09-04 18:02 - 00000000 ____D () C:\ProgramData\Skype
2015-04-21 17:15 - 2014-09-04 18:02 - 00000000 ____D () C:\Users\home\AppData\Roaming\Skype
2015-04-17 12:01 - 2013-08-22 17:36 - 00000000 ____D () C:\Windows\LiveKernelReports
2015-04-16 18:39 - 2014-12-31 15:19 - 00003842 _____ () C:\Windows\System32\Tasks\Adobe Flash Player PPAPI Notifier
2015-04-16 18:39 - 2014-12-31 15:19 - 00003802 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2015-04-16 00:47 - 2015-03-18 19:06 - 00000000 ____D () C:\Users\home\AppData\Roaming\uTorrent
2015-04-16 00:24 - 2014-09-03 14:15 - 00000000 ____D () C:\Program Files\NVIDIA Corporation
==================== Files in the root of some directories =======
2015-05-16 09:40 - 2015-05-16 09:40 - 0029696 _____ () C:\Users\home\AppData\Local\MSGBOX.EXE
2015-05-15 09:52 - 2015-05-15 09:52 - 0000000 _____ () C:\Users\home\AppData\Local\Temp.dat
2014-09-03 14:41 - 2014-09-03 14:41 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-05-11 17:20
==================== End Of Log ============================
tady je log z FRST
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 14-05-2015 02
Ran by home (administrator) on PC on 16-05-2015 09:40:47
Running from C:\Users\home\Desktop
Loaded Profiles: home (Available profiles: home)
Platform: Windows 8.1 Pro (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
() C:\Windows\SysWOW64\ASGT.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
(ASUS) C:\Program Files (x86)\ASUS\GPU Tweak\GPUTweak.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\APRP\aprp.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(ASUS) C:\Program Files (x86)\ASUS\GPU Tweak\Monitor.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(NVIDIA Corporation) C:\Users\home\AppData\Local\NVIDIA\NvBackend\ApplicationOntology\NvOAWrapperCache.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
() C:\Users\home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\conhost32.exe
() C:\Users\home\AppData\Roaming\Microsoft\Networking\inet32upd.exe
() C:\Users\home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\conhost64.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
() C:\Users\home\AppData\Roaming\Microsoft\Networking\winnet32b.exe
(Oracle Corporation) C:\Users\home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Photoshop CS5 Crack.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2685072 2015-05-01] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7203032 2014-09-03] (Realtek Semiconductor)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [500208 2010-03-06] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AdobeCS5ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [406992 2010-02-22] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1022152 2014-12-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [334896 2015-04-30] (Oracle Corporation)
HKU\S-1-5-21-2893419502-1249477774-2242879243-1001\...\Run: [AdobeBridge] => [X]
Startup: C:\Users\home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Photoshop CS5 Crack.exe [2015-05-15] (Oracle Corporation)
Startup: C:\Users\home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\conhost32.exe [2015-05-15] ()
Startup: C:\Users\home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\conhost64.exe [2015-05-15] ()
Startup: C:\Users\home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Grand Theft Auto V (2015) + DLC's - FULL UNLOCKED - RETAIL.lnk [2015-04-21]
ShortcutTarget: Grand Theft Auto V (2015) + DLC's - FULL UNLOCKED - RETAIL.lnk -> C:\ProgramData\{f31b9353-e84d-146c-f31b-b9353e844d4f}\Grand Theft Auto V (2015) + DLC's - FULL UNLOCKED - RETAIL.exe (No File)
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKU\S-1-5-21-2893419502-1249477774-2242879243-1001\Software\Microsoft\Internet Explorer\Main,Start Page = http://google.cz/
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dll [2015-05-15] (Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dll [2015-05-15] (Oracle Corporation)
Tcpip\..\Interfaces\{C1C6FDE8-6265-4941-B184-76F8227E6FE9}: [NameServer] 62.129.50.20,85.135.32.100
FireFox:
========
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.45.2 -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\dtplugin\npDeployJava1.dll [2015-05-15] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.45.2 -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\plugin2\npjp2.dll [2015-05-15] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2015-04-08] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2015-04-08] (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-05] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-05] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2015-05-01] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-2893419502-1249477774-2242879243-1001: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\home\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2009-11-30] (Unity Technologies ApS)
Chrome:
=======
CHR dev: Chrome dev build detected! <======= ATTENTION
CHR HomePage: Default -> hxxp://www.google.cz/
CHR StartupUrls: Default -> "hxxp://www.google.com/", "hxxp://www.search.ask.com/?o=APN11459&gct=hp&d ... 34-363&t=4"
CHR DefaultSuggestURL: Default -> {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:inputType}{google:cursorPosition}{google:currentPageUrl}{google:pageClassification}{google:searchVersion}{google:sessionToken}{google:prefetchQuery}sugkey={google:suggestAPIKeyParameter}
CHR Profile: C:\Users\home\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2014-09-04]
CHR Extension: (Google Docs) - C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-09-04]
CHR Extension: (Google Drive) - C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-09-04]
CHR Extension: (YouTube) - C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-09-04]
CHR Extension: (Steam inventory helper) - C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Extensions\cmeakgjggjdlcpncigglobpjbkabhmjl [2014-12-18]
CHR Extension: (Google Search) - C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-09-04]
CHR Extension: (Google Sheets) - C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2014-09-04]
CHR Extension: (Google Wallet) - C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-09-04]
CHR Extension: (Gmail) - C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-09-04]
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 ASGT; C:\Windows\SysWOW64\ASGT.exe [55296 2012-01-17] () [File not signed]
S3 BthHFSrv; C:\Windows\System32\BthHFSrv.dll [321024 2013-08-22] (Microsoft Corporation)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1152656 2015-05-01] (NVIDIA Corporation)
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160 2015-04-14] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1080120 2015-04-14] (Malwarebytes Corporation)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1884304 2015-05-01] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [22997648 2015-05-01] (NVIDIA Corporation)
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [5448976 2015-04-17] (TeamViewer GmbH)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366520 2015-02-04] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2015-02-04] (Microsoft Corporation)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R3 CMUAC; C:\Windows\system32\DRIVERS\Headset6400x1.SYS [387072 2013-10-03] (A4Tech Inc.)
R3 IOMap; C:\Windows\system32\drivers\IOMap64.sys [24824 2013-07-02] (ASUSTeK Computer Inc.)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-04-14] (Malwarebytes Corporation)
R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [136408 2015-05-16] (Malwarebytes Corporation)
R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [64216 2015-04-14] (Malwarebytes Corporation)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19600 2015-05-01] (NVIDIA Corporation)
R3 NVVADARM; C:\Windows\system32\drivers\nvvadarm.sys [39056 2015-04-09] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [38032 2014-11-22] (NVIDIA Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2015-02-04] (Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-05-16 09:40 - 2015-05-16 09:40 - 00029696 _____ () C:\Users\home\AppData\Local\MSGBOX.EXE
2015-05-16 09:40 - 2015-05-16 09:40 - 00015327 _____ () C:\Users\home\Desktop\LM.bat
2015-05-16 09:21 - 2015-05-16 09:38 - 00136408 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-05-16 09:21 - 2015-05-16 09:21 - 00001118 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-05-16 09:21 - 2015-05-16 09:21 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-05-16 09:21 - 2015-05-16 09:21 - 00000000 ____D () C:\ProgramData\Malwarebytes
2015-05-16 09:21 - 2015-05-16 09:21 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-05-16 09:21 - 2015-04-14 09:38 - 00064216 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2015-05-16 09:21 - 2015-04-14 09:37 - 00107736 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2015-05-16 09:21 - 2015-04-14 09:37 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2015-05-16 09:18 - 2015-05-16 09:19 - 21546080 _____ (Malwarebytes Corporation ) C:\Users\home\Downloads\mbam-setup-2.1.6.1022.exe
2015-05-15 23:36 - 2015-05-15 23:36 - 00000472 _____ () C:\Users\home\Downloads\FixList (1).zip
2015-05-15 23:35 - 2015-05-15 23:35 - 00037864 _____ () C:\Users\home\Desktop\Addition.txt
2015-05-15 23:34 - 2015-05-16 09:40 - 00012992 _____ () C:\Users\home\Desktop\FRST.txt
2015-05-15 23:33 - 2015-05-15 23:33 - 00112640 _____ (forum.viry.cz) C:\Users\home\Downloads\FRSTLauncher (2).exe
2015-05-15 23:33 - 2015-05-15 23:33 - 00112640 _____ (forum.viry.cz) C:\Users\home\Desktop\FRSTLauncher (2).exe
2015-05-15 23:32 - 2015-05-15 23:32 - 00112640 _____ (forum.viry.cz) C:\Users\home\Downloads\Nepotvrzeno 215233.crdownload
2015-05-15 23:31 - 2015-05-15 23:31 - 00112640 _____ (forum.viry.cz) C:\Users\home\Downloads\Nepotvrzeno 827992.crdownload
2015-05-15 23:31 - 2015-05-15 23:30 - 02106368 _____ (Farbar) C:\Users\home\Desktop\FRST64.exe
2015-05-15 23:30 - 2015-05-16 09:40 - 00000000 ____D () C:\FRST
2015-05-15 23:30 - 2015-05-15 23:30 - 02106368 _____ (Farbar) C:\Users\home\Downloads\FRST64.exe
2015-05-15 23:28 - 2015-05-15 23:28 - 00000472 _____ () C:\Users\home\Downloads\FixList.zip
2015-05-15 22:28 - 2015-05-15 22:28 - 00000952 _____ () C:\Users\home\Desktop\Play Minecraft.lnk
2015-05-15 22:28 - 2015-05-15 22:28 - 00000000 ____D () C:\Users\home\AppData\Local\TagCraftMC
2015-05-15 22:20 - 2015-05-15 22:27 - 135427653 _____ (TagCraftMC ) C:\Users\home\Downloads\Minecraft_1.8.3_Auto_Installer.exe
2015-05-15 22:17 - 2015-05-15 22:17 - 00562272 _____ (Oracle Corporation) C:\Users\home\Downloads\chromeinstall-8u45.exe
2015-05-15 22:16 - 2015-05-15 22:16 - 00327680 _____ () C:\Users\home\Downloads\Minecraft-1.8.3.exe
2015-05-15 22:09 - 2015-05-15 22:10 - 06239851 _____ () C:\Users\home\Downloads\Minecraft-1-8-3-plna-hra-zdarma-CZ.zip
2015-05-15 22:08 - 2015-05-15 22:08 - 06239853 _____ () C:\Users\home\Downloads\Minecraft-1.8.3-plna-hra-zdarma-CZ-.zip
2015-05-15 22:07 - 2015-05-16 01:00 - 00000000 ____D () C:\Users\home\AppData\Roaming\.minecraft
2015-05-15 09:53 - 2015-05-15 09:53 - 00000000 ____D () C:\ProgramData\ceae573e00006040
2015-05-15 09:52 - 2015-05-15 09:52 - 00000000 _____ () C:\Users\home\AppData\Local\Temp.dat
2015-05-15 09:42 - 2015-05-15 09:42 - 00006538 _____ () C:\Users\home\Downloads\megafont.zip
2015-05-15 09:32 - 2015-05-15 09:32 - 01821663 _____ () C:\Users\home\Downloads\Adobe-Photoshop-CS5-Crack.rar
2015-05-14 22:40 - 2015-05-15 09:52 - 48657168 _____ () C:\Users\home\Downloads\avatar.psd
2015-05-12 00:26 - 2015-05-12 00:26 - 05963600 _____ () C:\Users\home\ts3_recording_15_05_12_0_26_2.wav
2015-05-10 11:46 - 2013-07-02 16:29 - 00024824 _____ (ASUSTeK Computer Inc.) C:\Windows\system32\Drivers\IOMap64.sys
2015-05-09 17:20 - 2015-05-09 17:20 - 00000000 ____D () C:\Users\home\Documents\BeamNG.drive
2015-05-09 17:19 - 2015-05-09 17:25 - 187642614 _____ () C:\Users\home\Downloads\BeamNG-Techdemo-v2.1.zip
2015-05-09 17:03 - 2015-05-09 17:03 - 01081072 _____ (Unity Technologies ApS) C:\Users\home\Downloads\UnityWebPlayer (1).exe
2015-05-09 15:08 - 2015-05-09 15:08 - 07973496 _____ (TeamViewer GmbH) C:\Users\home\Downloads\TeamViewer_Setup_cs-iuu (1).exe
2015-04-28 11:11 - 2015-04-28 11:11 - 00001998 _____ () C:\Users\home\Desktop\Vítejte u registrace produktu ASUS.lnk
2015-04-26 15:04 - 2015-04-26 15:04 - 00200174 _____ () C:\Users\home\Downloads\Nazvoslovi_-_ARENY.odp
2015-04-23 18:20 - 2015-04-23 18:20 - 00000022 _____ () C:\Windows\GPU-Z.INI
2015-04-23 18:14 - 2015-04-23 18:14 - 00001066 _____ () C:\Users\Public\Desktop\GPUTweakStreaming.lnk
2015-04-23 18:14 - 2015-04-23 18:14 - 00001059 _____ () C:\Users\Public\Desktop\ASUS GPU Tweak.lnk
2015-04-23 18:14 - 2015-04-23 18:14 - 00000032 _____ () C:\setup.log
2015-04-23 18:14 - 2015-04-23 18:14 - 00000000 ____D () C:\Windows\System32\Tasks\ASUS
2015-04-23 18:14 - 2015-04-23 18:14 - 00000000 ____D () C:\Windows\Downloaded Installations
2015-04-23 18:14 - 2015-04-23 18:14 - 00000000 ____D () C:\Users\home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ASUS
2015-04-23 18:14 - 2015-04-23 18:14 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS
2015-04-23 18:14 - 2015-04-23 18:14 - 00000000 ____D () C:\Program Files (x86)\ASUS
2015-04-23 08:21 - 2015-04-23 08:21 - 00456973 _____ () C:\Users\home\Downloads\Grand Theft Auto V 8, 8.1 & 10.rar
2015-04-23 08:07 - 2015-04-14 08:09 - 56382096 _____ (Rockstar Games) C:\Users\home\Desktop\Social Club v1.1.5.6 Setup.exe
2015-04-23 08:00 - 2015-04-23 08:06 - 447096881 _____ () C:\Users\home\Downloads\Grand.Theft.Auto.V.Update.1.and.Crack.v2-3DM.zip
2015-04-23 07:46 - 2015-04-23 07:47 - 09659782 _____ () C:\Users\home\Downloads\GTA V - Crack Only.rar
2015-04-23 07:27 - 2015-04-22 18:36 - 00000080 _____ () C:\Users\home\AppData\Local剜捯獫慴慇敭屳呇⁁屖湥楴汴浥湥湩潦
2015-04-23 07:27 - 2015-04-16 00:10 - 00000000 ____D () C:\Program Files\Rockstar Games
2015-04-23 07:27 - 2015-04-16 00:10 - 00000000 ____D () C:\Program Files (x86)\Rockstar Games
2015-04-23 07:24 - 2015-04-23 07:24 - 00016323 _____ () C:\Users\home\Downloads\[kickass.to]3dmgame.grand.theft.auto.v.update.1.and.crack.v2.3dm (1).torrent
2015-04-23 07:22 - 2015-04-23 07:22 - 00016323 _____ () C:\Users\home\Downloads\[kickass.to]3dmgame.grand.theft.auto.v.update.1.and.crack.v2.3dm.torrent
2015-04-23 07:10 - 2015-04-23 08:19 - 00000000 ____D () C:\Users\home\Documents\Rockstar Games
2015-04-23 07:10 - 2015-04-23 07:10 - 00000000 ____D () C:\Users\home\AppData\Local\Rockstar Games
2015-04-22 21:36 - 2015-04-22 21:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rockstar Games
2015-04-22 18:27 - 2015-05-06 17:07 - 00001397 _____ () C:\Users\Public\Desktop\GeForce Experience.lnk
2015-04-22 18:26 - 2015-04-22 18:26 - 00002153 _____ () C:\Users\Public\Desktop\3D Vision Photo Viewer.lnk
2015-04-22 18:26 - 2015-04-08 22:32 - 00560968 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe
2015-04-22 18:24 - 2015-04-09 02:58 - 01557648 _____ (NVIDIA Corporation) C:\Windows\system32\nvmcvadgenco64.dll
2015-04-22 18:24 - 2015-04-09 02:58 - 00100680 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcaparm.dll
2015-04-22 18:24 - 2015-04-09 02:58 - 00039056 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvadarm.sys
2015-04-22 18:20 - 2015-04-22 18:21 - 283201840 _____ (NVIDIA Corporation) C:\Users\home\Downloads\350.12-desktop-win8-win7-winvista-64bit-international-whql.exe
2015-04-22 18:13 - 2015-04-22 18:13 - 00000000 ____D () C:\Windows\LastGood
2015-04-22 07:42 - 2015-04-22 07:42 - 00032111 _____ () C:\Users\home\Downloads\[kickass.to]grand.theft.auto.v.update.3.v1.0.33502.and.crack.v4.3dm.torrent
2015-04-22 07:41 - 2015-04-22 07:41 - 00031991 _____ () C:\Users\home\Downloads\[kickass.to]3dmgame.grand.theft.auto.v.update.2.and.crack.3dm.torrent
2015-04-21 22:05 - 2015-04-21 22:05 - 00187479 _____ () C:\Users\home\Downloads\GTAV-utoerrent-PC-Tutoriales y de todo gamer-repack (1)
2015-04-21 22:05 - 2015-04-21 22:05 - 00187479 _____ () C:\Users\home\Downloads\GTAV-utoerrent-PC-Tutoriales y de todo gamer-repack
2015-04-21 22:05 - 2015-04-21 22:05 - 00000722 _____ () C:\Users\home\Downloads\GTA V+CRACK.txt
2015-04-21 22:01 - 2015-05-15 09:20 - 00000000 ____D () C:\ProgramData\3751633053251181686
2015-04-21 22:01 - 2015-04-21 22:01 - 00162454 _____ () C:\Users\home\Downloads\[kickass.to]grand.theft.auto.v.2015.dlc.s.full.unlocked.retail.torrent
2015-04-21 22:01 - 2015-04-21 22:01 - 00000000 ____D () C:\Program Files (x86)\SaalePllUs
2015-04-21 22:00 - 2015-05-16 09:33 - 00000000 ____D () C:\ProgramData\{f31b9353-e84d-146c-f31b-b9353e844d4f}
2015-04-21 22:00 - 2015-05-15 22:00 - 00000444 _____ () C:\Windows\Tasks\Bidaily Synchronize Task.job
2015-04-21 22:00 - 2015-04-21 22:00 - 00003338 _____ () C:\Windows\System32\Tasks\Bidaily Synchronize Task
2015-04-21 22:00 - 2015-04-21 22:00 - 00001947 _____ () C:\Users\home\Desktop\Grand Theft Auto V (2015) + DLC's - FULL UNLOCKED - RETAIL.lnk
2015-04-21 21:59 - 2015-04-21 22:00 - 00385536 _____ () C:\Users\home\Downloads\Grand Theft Auto V (2015) + DLC's - FULL UNLOCKED - RETAIL.exe
2015-04-21 21:48 - 2015-04-21 21:48 - 20197233 _____ () C:\Users\home\Downloads\GTA-5-PC-Game-Downloader-Fix-Patch-Full-Unlocked.rar
2015-04-21 19:40 - 2015-04-21 19:40 - 00154171 _____ () C:\Users\home\Downloads\Grand Theft Auto V (2015) + DLC's - FULL UNLOCKED +CRACK.torrent
2015-04-21 19:39 - 2015-04-21 19:39 - 00017552 _____ () C:\Users\home\Downloads\Grand.Theft.Auto.V.(2012).RELOADED.torrent
2015-04-21 17:32 - 2015-04-21 17:34 - 00000000 ____D () C:\Windows\system32\appmgmt
2015-04-16 15:29 - 2015-04-16 15:30 - 00638976 _____ () C:\Users\home\Downloads\Detection.msi
2015-04-16 00:24 - 2015-04-16 00:25 - 00000000 ____D () C:\Windows\LastGood.Tmp
2015-04-16 00:23 - 2015-04-09 02:58 - 31570064 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 30397072 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 25375048 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 24053576 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 15818528 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 15716232 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 14006752 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 12852784 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 11380728 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 10423952 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2015-04-16 00:23 - 2015-04-09 02:58 - 02896528 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 02573456 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 01895568 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6435012.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 01557648 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6435012.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 01086424 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 01047368 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 01037640 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 00970568 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 00962192 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 00927440 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 00849552 _____ () C:\Windows\system32\nvmcumd.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 00499344 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 00402576 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 00390472 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 00346256 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 00175880 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 00154256 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 00150648 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 00128512 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2015-04-16 00:20 - 2015-04-16 00:20 - 00000739 _____ () C:\Users\home\Desktop\Launcher – zástupce.lnk
2015-04-16 00:02 - 2015-04-16 00:02 - 00031736 _____ () C:\Users\home\Downloads\[kickass.to]3dmgame.grand.theft.auto.v.update.3.v1.0.335.2.and.crack.v4.3dm.7z.torrent
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-05-16 09:41 - 2014-12-31 15:19 - 00000892 _____ () C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job
2015-05-16 09:39 - 2014-12-31 15:19 - 00000914 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-05-16 09:38 - 2014-09-04 17:36 - 00000962 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-05-16 09:38 - 2014-09-03 14:16 - 00000000 ____D () C:\ProgramData\NVIDIA
2015-05-16 09:38 - 2013-08-22 16:46 - 00067089 _____ () C:\Windows\setupact.log
2015-05-16 09:38 - 2013-08-22 16:45 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-05-16 09:37 - 2013-09-30 05:39 - 01962823 _____ () C:\Windows\WindowsUpdate.log
2015-05-16 09:37 - 2013-09-29 21:09 - 00109874 _____ () C:\Windows\PFRO.log
2015-05-16 09:37 - 2013-08-22 15:25 - 00262144 ___SH () C:\Windows\system32\config\BBI
2015-05-16 09:34 - 2013-09-30 05:52 - 00003942 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{E5F34E29-9037-41AA-80DE-74D3938F68C1}
2015-05-16 09:32 - 2013-08-22 16:44 - 05040912 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-05-16 09:27 - 2013-09-30 05:45 - 00003598 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2893419502-1249477774-2242879243-1001
2015-05-16 01:01 - 2014-09-16 17:34 - 00000000 ____D () C:\Users\home\AppData\Roaming\TS3Client
2015-05-16 01:00 - 2014-09-04 17:36 - 00000966 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-05-16 00:00 - 2013-08-22 17:36 - 00000000 ____D () C:\Windows\system32\sru
2015-05-15 22:18 - 2015-02-05 19:49 - 00097888 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2015-05-15 22:18 - 2015-02-05 19:48 - 00000000 ____D () C:\Program Files (x86)\Java
2015-05-15 22:09 - 2014-09-30 16:45 - 00000000 ____D () C:\Users\home\AppData\Roaming\NVIDIA
2015-05-15 10:25 - 2014-12-13 17:57 - 00000000 ____D () C:\Users\home\AppData\Roaming\OBS
2015-05-14 22:42 - 2014-12-28 21:23 - 00000000 ____D () C:\Users\home\AppData\Local\Battle.net
2015-05-14 22:36 - 2015-03-20 19:26 - 00000000 ____D () C:\Users\home\Desktop\Adobe CS5
2015-05-14 21:42 - 2014-12-28 21:22 - 00000000 ____D () C:\Program Files (x86)\Battle.net
2015-05-14 21:14 - 2014-09-04 08:44 - 00002457 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2015-05-14 10:57 - 2013-08-22 17:36 - 00000000 ____D () C:\Windows\AppReadiness
2015-05-12 00:26 - 2013-09-30 05:40 - 00000000 ____D () C:\Users\home
2015-05-11 12:33 - 2015-01-14 21:33 - 00000000 ____D () C:\Users\home\Desktop\referáty
2015-05-10 21:22 - 2015-01-28 16:24 - 00000000 ____D () C:\Users\home\AppData\Local\CrashDumps
2015-05-09 15:08 - 2015-02-18 22:50 - 00001059 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 10.lnk
2015-05-09 15:08 - 2015-02-18 22:50 - 00001047 _____ () C:\Users\Public\Desktop\TeamViewer 10.lnk
2015-05-09 15:08 - 2015-02-18 22:50 - 00000000 ____D () C:\Program Files (x86)\TeamViewer
2015-05-01 18:51 - 2014-09-03 14:19 - 01316184 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
2015-05-01 18:51 - 2014-09-03 14:19 - 01316000 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspbridge.dll
2015-05-01 18:50 - 2014-09-03 14:19 - 01756424 _____ (NVIDIA Corporation) C:\Windows\system32\nvspbridge64.dll
2015-05-01 18:50 - 2014-09-03 14:19 - 01570672 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll
2015-04-23 18:14 - 2014-09-03 14:40 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2015-04-23 07:33 - 2014-09-04 09:22 - 00097862 _____ () C:\Windows\DirectX.log
2015-04-22 18:26 - 2014-09-03 14:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2015-04-22 18:26 - 2014-09-03 14:15 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation
2015-04-22 18:26 - 2014-09-03 14:15 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation
2015-04-22 14:48 - 2013-09-30 06:20 - 01745984 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-04-22 14:48 - 2013-09-30 05:57 - 00738682 _____ () C:\Windows\system32\perfh005.dat
2015-04-22 14:48 - 2013-09-30 05:57 - 00151404 _____ () C:\Windows\system32\perfc005.dat
2015-04-21 17:34 - 2014-09-04 18:02 - 00000000 ____D () C:\ProgramData\Skype
2015-04-21 17:15 - 2014-09-04 18:02 - 00000000 ____D () C:\Users\home\AppData\Roaming\Skype
2015-04-17 12:01 - 2013-08-22 17:36 - 00000000 ____D () C:\Windows\LiveKernelReports
2015-04-16 18:39 - 2014-12-31 15:19 - 00003842 _____ () C:\Windows\System32\Tasks\Adobe Flash Player PPAPI Notifier
2015-04-16 18:39 - 2014-12-31 15:19 - 00003802 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2015-04-16 00:47 - 2015-03-18 19:06 - 00000000 ____D () C:\Users\home\AppData\Roaming\uTorrent
2015-04-16 00:24 - 2014-09-03 14:15 - 00000000 ____D () C:\Program Files\NVIDIA Corporation
==================== Files in the root of some directories =======
2015-05-16 09:40 - 2015-05-16 09:40 - 0029696 _____ () C:\Users\home\AppData\Local\MSGBOX.EXE
2015-05-15 09:52 - 2015-05-15 09:52 - 0000000 _____ () C:\Users\home\AppData\Local\Temp.dat
2014-09-03 14:41 - 2014-09-03 14:41 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-05-11 17:20
==================== End Of Log ============================
Re: winnet32b inet32upd
Zdravim
Jste si diky tomu nelegalnimu GTA, Minecraftu a Photoshopu pekne zasvinil PC
Udelejte MBAM dle tohoto http://forum.viry.cz/viewtopic.php?f=29&t=137928
Re: winnet32b inet32upd
no už mi probíhá skenování. mohl bych tě požádat aby jsi mi přiblížil co se děje na mém PC protože se to všechno začalo dít včera když jsme se s kámošem ze základky rozhodli že pujdeme zase hrat minecraft a když sem hledal nějaký vhodný instaler stalo se tohle..... GTA a photoshop už mám na PC nějaký ten pátek a nic se nedělo
Re: winnet32b inet32upd
Malwarebytes Anti-Malware
www.malwarebytes.org
Datum skenování: 16. 5. 2015
Čas skenování: 9:22:05
Protokol: MBAMLOG.txt
Správce: Ano
Verze: 2.01.6.1022
Databáze malwaru: v2015.05.16.01
Databáze rootkitů: v2015.05.14.01
Licence: Zkušební verze
Ochrana proti malwaru: Zapnuto
Ochrana proti škodlivým webovým stránkám: Zapnuto
Ochrana programu: Vypnuto
OS: Windows 8.1
CPU: x64
Souborový systém: NTFS
Uživatel: home
Typ skenu: Sken hrozeb
Výsledek: Dokončeno
Prohledaných objektů: 345670
Uplynulý čas: 8 min, 40 sek
Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Vypnuto
Heuristika: Zapnuto
PUP: Zapnuto
PUM: Zapnuto
Procesy: 1
Backdoor.Agent.TRJ, C:\Users\home\AppData\Roaming\System.exe, 6452, Smazat při restartu, [4732370c0882a6904cfb51a653b060a0]
Moduly: 0
(Nenalezeny žádné škodlivé položky)
Klíče registru: 2
PUP.Optional.Multiplug, HKU\S-1-5-21-2893419502-1249477774-2242879243-1001_Classes\TYPELIB\{157B1AA6-3E5C-404A-9118-C1D91F537040}, Do karantény, [45346ad9b4d679bdc1104fcb9f647f81],
PUP.Optional.Multiplug, HKU\S-1-5-21-2893419502-1249477774-2242879243-1001_Classes\INTERFACE\{3B3F3AAD-FB97-49FF-BFEE-D22869AC4326}, Do karantény, [45346ad9b4d679bdc1104fcb9f647f81],
Hodnoty registru: 1
Backdoor.Agent.TRJ, HKU\S-1-5-21-2893419502-1249477774-2242879243-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|957286bacb03df96ddb4e19f8f1fa79b, "C:\Users\home\AppData\Roaming\System.exe" .., Do karantény, [4732370c0882a6904cfb51a653b060a0]
Data registru: 0
(Nenalezeny žádné škodlivé položky)
Složky: 0
(Nenalezeny žádné škodlivé položky)
Soubory: 10
Backdoor.Agent.ASM, C:\Users\home\Desktop\Dragon Age Inquisition crack.exe, Do karantény, [f48533103e4c0531e17627e1778b54ac],
Trojan.MSIL.GenX, C:\Users\home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\957286bacb03df96ddb4e19f8f1fa79b.exe, Smazat při restartu, [9adfdb6835551d19efd856d024dd2ad6],
PUP.Optional.OpenCandy, C:\Users\home\Downloads\DTLite4491-0356.exe, Do karantény, [86f3c77cec9e72c4ee3bb94fbc4a9967],
HackTool.Hoylecann, C:\Users\home\Downloads\Hoic.zip, Do karantény, [7dfcf84be1a9e94dec6c475d7d83e719],
PUP.Optional.SmsPay, C:\Users\home\Downloads\IMG_02112014.scr, Do karantény, [caaffe4598f2b1851e5406ec0bf64bb5],
PUP.Optional.OpenCandy, C:\Users\home\Downloads\jetaudio-1.0.exe, Do karantény, [d5a46cd7d0ba340254d50efa9a6cfb05],
PUP.Optional.MultiPlug, C:\Users\home\Downloads\Touchgrind+BMX+Full+MOD+v1.3+ClubVAIO.apk.exe, Do karantény, [cfaa2023bfcb42f486543da9748ded13],
Backdoor.Agent.ASM, C:\Users\home\Downloads\Dragon-Age-Inquisition-crack.rar, Do karantény, [b4c52d16b3d7989e302763a57290eb15],
Hacktool.Agent, C:\Users\home\Downloads\NEW CSGO Elo Rank System.rar, Do karantény, [e297f74c5d2daa8c80ecfd16897d8878],
Backdoor.Agent.TRJ, C:\Users\home\AppData\Roaming\System.exe, Smazat při restartu, [4732370c0882a6904cfb51a653b060a0],
Fyzické sektory: 0
(Nenalezeny žádné škodlivé položky)
(end)
www.malwarebytes.org
Datum skenování: 16. 5. 2015
Čas skenování: 9:22:05
Protokol: MBAMLOG.txt
Správce: Ano
Verze: 2.01.6.1022
Databáze malwaru: v2015.05.16.01
Databáze rootkitů: v2015.05.14.01
Licence: Zkušební verze
Ochrana proti malwaru: Zapnuto
Ochrana proti škodlivým webovým stránkám: Zapnuto
Ochrana programu: Vypnuto
OS: Windows 8.1
CPU: x64
Souborový systém: NTFS
Uživatel: home
Typ skenu: Sken hrozeb
Výsledek: Dokončeno
Prohledaných objektů: 345670
Uplynulý čas: 8 min, 40 sek
Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Vypnuto
Heuristika: Zapnuto
PUP: Zapnuto
PUM: Zapnuto
Procesy: 1
Backdoor.Agent.TRJ, C:\Users\home\AppData\Roaming\System.exe, 6452, Smazat při restartu, [4732370c0882a6904cfb51a653b060a0]
Moduly: 0
(Nenalezeny žádné škodlivé položky)
Klíče registru: 2
PUP.Optional.Multiplug, HKU\S-1-5-21-2893419502-1249477774-2242879243-1001_Classes\TYPELIB\{157B1AA6-3E5C-404A-9118-C1D91F537040}, Do karantény, [45346ad9b4d679bdc1104fcb9f647f81],
PUP.Optional.Multiplug, HKU\S-1-5-21-2893419502-1249477774-2242879243-1001_Classes\INTERFACE\{3B3F3AAD-FB97-49FF-BFEE-D22869AC4326}, Do karantény, [45346ad9b4d679bdc1104fcb9f647f81],
Hodnoty registru: 1
Backdoor.Agent.TRJ, HKU\S-1-5-21-2893419502-1249477774-2242879243-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|957286bacb03df96ddb4e19f8f1fa79b, "C:\Users\home\AppData\Roaming\System.exe" .., Do karantény, [4732370c0882a6904cfb51a653b060a0]
Data registru: 0
(Nenalezeny žádné škodlivé položky)
Složky: 0
(Nenalezeny žádné škodlivé položky)
Soubory: 10
Backdoor.Agent.ASM, C:\Users\home\Desktop\Dragon Age Inquisition crack.exe, Do karantény, [f48533103e4c0531e17627e1778b54ac],
Trojan.MSIL.GenX, C:\Users\home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\957286bacb03df96ddb4e19f8f1fa79b.exe, Smazat při restartu, [9adfdb6835551d19efd856d024dd2ad6],
PUP.Optional.OpenCandy, C:\Users\home\Downloads\DTLite4491-0356.exe, Do karantény, [86f3c77cec9e72c4ee3bb94fbc4a9967],
HackTool.Hoylecann, C:\Users\home\Downloads\Hoic.zip, Do karantény, [7dfcf84be1a9e94dec6c475d7d83e719],
PUP.Optional.SmsPay, C:\Users\home\Downloads\IMG_02112014.scr, Do karantény, [caaffe4598f2b1851e5406ec0bf64bb5],
PUP.Optional.OpenCandy, C:\Users\home\Downloads\jetaudio-1.0.exe, Do karantény, [d5a46cd7d0ba340254d50efa9a6cfb05],
PUP.Optional.MultiPlug, C:\Users\home\Downloads\Touchgrind+BMX+Full+MOD+v1.3+ClubVAIO.apk.exe, Do karantény, [cfaa2023bfcb42f486543da9748ded13],
Backdoor.Agent.ASM, C:\Users\home\Downloads\Dragon-Age-Inquisition-crack.rar, Do karantény, [b4c52d16b3d7989e302763a57290eb15],
Hacktool.Agent, C:\Users\home\Downloads\NEW CSGO Elo Rank System.rar, Do karantény, [e297f74c5d2daa8c80ecfd16897d8878],
Backdoor.Agent.TRJ, C:\Users\home\AppData\Roaming\System.exe, Smazat při restartu, [4732370c0882a6904cfb51a653b060a0],
Fyzické sektory: 0
(Nenalezeny žádné škodlivé položky)
(end)
Re: winnet32b inet32upd
Spolecne s tim "vhodnym" installerem Minecraftu jste si tam stahl i hoooodne haveti...Nejlepsi by bylo si hru a i ostatni SW zakoupit a nebyly by tyto problemy. Nehlede na to, ze se vystavujete riziku trestniho stihani za porusovani autorskeho zakona.
Neudelal jste sken MBAMem dle pokynu, dal jste jen Sken hrozeb. Ale v navodu se pise Vlastni sken a otestovat vsechny disky. Takze jeste jednou prosim
Neudelal jste sken MBAMem dle pokynu, dal jste jen Sken hrozeb. Ale v navodu se pise Vlastni sken a otestovat vsechny disky. Takze jeste jednou prosim
Re: winnet32b inet32upd
Malwarebytes Anti-Malware
www.malwarebytes.org
Datum skenování: 16. 5. 2015
Čas skenování: 12:05:37
Protokol: sken.txt
Správce: Ano
Verze: 2.01.6.1022
Databáze malwaru: v2015.05.16.01
Databáze rootkitů: v2015.05.14.01
Licence: Zkušební verze
Ochrana proti malwaru: Zapnuto
Ochrana proti škodlivým webovým stránkám: Zapnuto
Ochrana programu: Vypnuto
OS: Windows 8.1
CPU: x64
Souborový systém: NTFS
Uživatel: home
Typ skenu: Vlastní sken
Výsledek: Dokončeno
Prohledaných objektů: 523280
Uplynulý čas: 1 hod, 12 min, 46 sek
Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Vypnuto
Heuristika: Zapnuto
PUP: Zapnuto
PUM: Zapnuto
Procesy: 0
(Nenalezeny žádné škodlivé položky)
Moduly: 0
(Nenalezeny žádné škodlivé položky)
Klíče registru: 0
(Nenalezeny žádné škodlivé položky)
Hodnoty registru: 0
(Nenalezeny žádné škodlivé položky)
Data registru: 0
(Nenalezeny žádné škodlivé položky)
Složky: 0
(Nenalezeny žádné škodlivé položky)
Soubory: 4
PUP.Optional.Multiplug.A, C:\Program Files (x86)\SaalePllUs\SaalePllUs.exe, , [fc552272ee9c15216fd1d77b0cf6728e],
PUP.Optional.MultiPlug, C:\Users\home\Downloads\Grand Theft Auto V (2015) + DLC's - FULL UNLOCKED - RETAIL.exe, , [b59c0b894e3cae882e6367e9d72b6b95],
PUP.Optional.Multiplug.A, C:\Windows\System32\Tasks\Bidaily Synchronize Task, , [5ef39ff558320a2c1944d2981de840c0],
PUP.Optional.Multiplug.A, C:\Windows\Tasks\Bidaily Synchronize Task.job, , [8fc297fde0aab38388d6bfab62a39e62],
Fyzické sektory: 0
(Nenalezeny žádné škodlivé položky)
(end)
www.malwarebytes.org
Datum skenování: 16. 5. 2015
Čas skenování: 12:05:37
Protokol: sken.txt
Správce: Ano
Verze: 2.01.6.1022
Databáze malwaru: v2015.05.16.01
Databáze rootkitů: v2015.05.14.01
Licence: Zkušební verze
Ochrana proti malwaru: Zapnuto
Ochrana proti škodlivým webovým stránkám: Zapnuto
Ochrana programu: Vypnuto
OS: Windows 8.1
CPU: x64
Souborový systém: NTFS
Uživatel: home
Typ skenu: Vlastní sken
Výsledek: Dokončeno
Prohledaných objektů: 523280
Uplynulý čas: 1 hod, 12 min, 46 sek
Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Vypnuto
Heuristika: Zapnuto
PUP: Zapnuto
PUM: Zapnuto
Procesy: 0
(Nenalezeny žádné škodlivé položky)
Moduly: 0
(Nenalezeny žádné škodlivé položky)
Klíče registru: 0
(Nenalezeny žádné škodlivé položky)
Hodnoty registru: 0
(Nenalezeny žádné škodlivé položky)
Data registru: 0
(Nenalezeny žádné škodlivé položky)
Složky: 0
(Nenalezeny žádné škodlivé položky)
Soubory: 4
PUP.Optional.Multiplug.A, C:\Program Files (x86)\SaalePllUs\SaalePllUs.exe, , [fc552272ee9c15216fd1d77b0cf6728e],
PUP.Optional.MultiPlug, C:\Users\home\Downloads\Grand Theft Auto V (2015) + DLC's - FULL UNLOCKED - RETAIL.exe, , [b59c0b894e3cae882e6367e9d72b6b95],
PUP.Optional.Multiplug.A, C:\Windows\System32\Tasks\Bidaily Synchronize Task, , [5ef39ff558320a2c1944d2981de840c0],
PUP.Optional.Multiplug.A, C:\Windows\Tasks\Bidaily Synchronize Task.job, , [8fc297fde0aab38388d6bfab62a39e62],
Fyzické sektory: 0
(Nenalezeny žádné škodlivé položky)
(end)
Re: winnet32b inet32upd
- Ulozte nejlepe na plochu
- Ukoncete vsechny programy
- Po spusteni probehne stazeni databaze
- Kliknete na Scan a nasledne Clean
- Probehne oprava, restart PC a pak se objevi log, pripadne bude ulozen ve slozce c:\AdwCleaner\AdwCleaner[S?].txt, ten sem vlozte
- Pokud pouzivate Win Vista ci W7, kliknete na Zoek pravym a dejte Run As Administrator ci Spustit jako spravce
- Do okna vlozte skript nize
Kód: Vybrat vše
autoclean; resethosts; emptyclsid; IEdefaults; FFdefaults; CHRdefaults; emptyIEcache; emptyFFcache; emptyCHRcache; emptyalltemp; emptyflash; emptyjava; emptyrecycle.bin;- Nasledne kliknete na Run Script
- PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem
Re: winnet32b inet32upd
# AdwCleaner v4.204 - Log vytvořen 16/05/2015 v 13:42:02
# Aktualizováno 12/05/2015 by Xplode
# Databáze : 2015-05-12.2 [Server]
# Operační system : Windows 8.1 Pro (x64)
# Uživatelské jméno : home - PC
# Spuštěno z : C:\Users\home\Desktop\adwcleaner_4.204.exe
# Nastavení : Čištění
***** [ Služby ] *****
***** [ Soubory / Složky ] *****
Složka Smazáno : C:\ProgramData\3751633053251181686
Složka Smazáno : C:\ProgramData\ceae573e00006040
Složka Smazáno : C:\ProgramData\{f31b9353-e84d-146c-f31b-b9353e844d4f}
Složka Smazáno : C:\Program Files (x86)\SaalePllUs
Složka Smazáno : C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek
Složka Smazáno : C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake
Složka Smazáno : C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf
Složka Smazáno : C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Extensions\cmeakgjggjdlcpncigglobpjbkabhmjl
Složka Smazáno : C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap
Složka Smazáno : C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda
***** [ Naplánované úlohy ] *****
***** [ Zástupci ] *****
***** [ Registry ] *****
Klíč Smazáno : HKCU\Software\12c1ae7e6b63dba77ecd12548fd9bd0c
Klíč Smazáno : HKCU\Software\957286bacb03df96ddb4e19f8f1fa79b
Klíč Smazáno : HKLM\SOFTWARE\213c015d-b051-bb4a-d778-7896fa2e6986
Klíč Smazáno : HKLM\SOFTWARE\Classes\TypeLib\{995AEC82-0E5F-419A-864E-4E50012D0863}
Klíč Smazáno : HKLM\SOFTWARE\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
Klíč Smazáno : HKLM\SOFTWARE\{12A61307-94CD-4F8E-94BC-918E511FAA81}
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{B138259A-351E-33FA-2726-8D71704F1DA9}
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{BE360B8B-0F10-CA89-FC84-A5EAB71A6AF8}
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{CA1838EF-A497-194E-3850-37A62CEE398B}
***** [ Prohlížeče ] *****
-\\ Internet Explorer v11.0.9600.17416
-\\ Google Chrome v42.0.2311.152
[C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Smazáno [Search Provider] : hxxp://dts.search.ask.com/sr?src=crb&gct=ds&appid=209&systemid=488&v=a12834-363&apn_uid=9134893254624279&apn_dtid=TCH001&o=APN11459&apn_ptnrs=AG1&q={searchTerms}
[C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Smazáno [Extension] : aapocclcgogkmnckokdopfmhonfmgoek
[C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Smazáno [Extension] : aohghmighlieiainnegkcijnfilokake
[C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Smazáno [Extension] : apdfllckaahabafndbhieahigkjlhalf
[C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Smazáno [Extension] : cmeakgjggjdlcpncigglobpjbkabhmjl
[C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Smazáno [Extension] : felcaaldnbdncclmgdcncolpebgiejap
[C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Smazáno [Extension] : nmmhkkegccagdldgiimedpiccmgmieda
[C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Smazáno [Startup_URLs] : hxxp://www.google.com/", "hxxp://www.search.ask.com/?o=APN11459&gct=hp&d ... 34-363&t=4
*************************
AdwCleaner[R0].txt - [3776 bytů] - [16/05/2015 13:40:57]
AdwCleaner[S0].txt - [3674 bytů] - [16/05/2015 13:42:02]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [3732 bytů] ##########
# Aktualizováno 12/05/2015 by Xplode
# Databáze : 2015-05-12.2 [Server]
# Operační system : Windows 8.1 Pro (x64)
# Uživatelské jméno : home - PC
# Spuštěno z : C:\Users\home\Desktop\adwcleaner_4.204.exe
# Nastavení : Čištění
***** [ Služby ] *****
***** [ Soubory / Složky ] *****
Složka Smazáno : C:\ProgramData\3751633053251181686
Složka Smazáno : C:\ProgramData\ceae573e00006040
Složka Smazáno : C:\ProgramData\{f31b9353-e84d-146c-f31b-b9353e844d4f}
Složka Smazáno : C:\Program Files (x86)\SaalePllUs
Složka Smazáno : C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek
Složka Smazáno : C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake
Složka Smazáno : C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf
Složka Smazáno : C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Extensions\cmeakgjggjdlcpncigglobpjbkabhmjl
Složka Smazáno : C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap
Složka Smazáno : C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda
***** [ Naplánované úlohy ] *****
***** [ Zástupci ] *****
***** [ Registry ] *****
Klíč Smazáno : HKCU\Software\12c1ae7e6b63dba77ecd12548fd9bd0c
Klíč Smazáno : HKCU\Software\957286bacb03df96ddb4e19f8f1fa79b
Klíč Smazáno : HKLM\SOFTWARE\213c015d-b051-bb4a-d778-7896fa2e6986
Klíč Smazáno : HKLM\SOFTWARE\Classes\TypeLib\{995AEC82-0E5F-419A-864E-4E50012D0863}
Klíč Smazáno : HKLM\SOFTWARE\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
Klíč Smazáno : HKLM\SOFTWARE\{12A61307-94CD-4F8E-94BC-918E511FAA81}
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{B138259A-351E-33FA-2726-8D71704F1DA9}
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{BE360B8B-0F10-CA89-FC84-A5EAB71A6AF8}
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{CA1838EF-A497-194E-3850-37A62CEE398B}
***** [ Prohlížeče ] *****
-\\ Internet Explorer v11.0.9600.17416
-\\ Google Chrome v42.0.2311.152
[C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Smazáno [Search Provider] : hxxp://dts.search.ask.com/sr?src=crb&gct=ds&appid=209&systemid=488&v=a12834-363&apn_uid=9134893254624279&apn_dtid=TCH001&o=APN11459&apn_ptnrs=AG1&q={searchTerms}
[C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Smazáno [Extension] : aapocclcgogkmnckokdopfmhonfmgoek
[C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Smazáno [Extension] : aohghmighlieiainnegkcijnfilokake
[C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Smazáno [Extension] : apdfllckaahabafndbhieahigkjlhalf
[C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Smazáno [Extension] : cmeakgjggjdlcpncigglobpjbkabhmjl
[C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Smazáno [Extension] : felcaaldnbdncclmgdcncolpebgiejap
[C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Smazáno [Extension] : nmmhkkegccagdldgiimedpiccmgmieda
[C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Smazáno [Startup_URLs] : hxxp://www.google.com/", "hxxp://www.search.ask.com/?o=APN11459&gct=hp&d ... 34-363&t=4
*************************
AdwCleaner[R0].txt - [3776 bytů] - [16/05/2015 13:40:57]
AdwCleaner[S0].txt - [3674 bytů] - [16/05/2015 13:42:02]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [3732 bytů] ##########
Re: winnet32b inet32upd
Zoek.exe v5.0.0.0 Updated 04-May-2015
Tool run by home on so 16. 05. 2015 at 13:45:26,09.
Microsoft Windows 8.1 Pro 6.3.9600 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\home\Desktop\zoek.exe [Scan all users] [Script inserted]
==== System Restore Info ======================
16. 5. 2015 13:46:10 Zoek.exe System Restore Point Created Successfully.
==== Reset Hosts File ======================
# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host
127.0.0.1 localhost
==== Empty Folders Check ======================
C:\PROGRA~2\COMMON~1\Blizzard Entertainment deleted successfully
C:\PROGRA~3\DAEMON Tools Lite deleted successfully
C:\Users\home\AppData\Local\VirtualStore deleted successfully
==== Deleting CLSID Registry Keys ======================
==== Deleting CLSID Registry Values ======================
==== Deleting Services ======================
==== Deleting Files \ Folders ======================
C:\PROGRA~3\Package Cache deleted
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Search.lnk deleted
C:\Windows\SysNative\config\systemprofile\Searches deleted
C:\Users\home\AppData\Local\MSGBOX.EXE deleted
==== Chromium Look ======================
==== Chromium Startpages ======================
C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Preferences
"homepage": "http://www.google.cz/",
==== Set IE to Default ======================
Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://google.cz/"
New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://google.cz/"
==== All HKCU SearchScopes ======================
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
{012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTer ... ORM=IE8SRC"
==== Reset Google Chrome ======================
C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences was reset successfully
C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Web Data-journal was reset successfully
==== Empty IE Cache ======================
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\home\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\home\AppData\Local\Microsoft\Windows\INetCache\IE\I95NB0E0 will be deleted at reboot
C:\Users\home\AppData\Local\Microsoft\Windows\INetCache\IE\J5C1DE63 will be deleted at reboot
C:\Users\home\AppData\Local\Microsoft\Windows\INetCache\IE\Q79KS3E4 will be deleted at reboot
==== Empty FireFox Cache ======================
No FireFox Profiles found
==== Empty Chrome Cache ======================
C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
==== Empty All Flash Cache ======================
Flash Cache Emptied Successfully
==== Empty All Java Cache ======================
Java Cache cleared successfully
==== C:\zoek_backup content ======================
C:\zoek_backup (files=16 folders=16 14135208 bytes)
==== Empty Temp Folders ======================
C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\home\AppData\Local\Temp will be emptied at reboot
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp will be emptied at reboot
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Windows\Temp will be emptied at reboot
==== After Reboot ======================
==== Empty Temp Folders ======================
C:\Windows\Temp successfully emptied
C:\Users\home\AppData\Local\Temp successfully emptied
==== Empty Recycle Bin ======================
C:\$RECYCLE.BIN successfully emptied
==== Deleting Files / Folders ======================
"C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp\MpCmdRun.log" deleted
"C:\Users\home\AppData\Local\Microsoft\Windows\INetCache\IE\I95NB0E0" not found
"C:\Users\home\AppData\Local\Microsoft\Windows\INetCache\IE\J5C1DE63" not found
"C:\Users\home\AppData\Local\Microsoft\Windows\INetCache\IE\Q79KS3E4" not found
==== EOF on so 16. 05. 2015 at 13:56:20,43 ======================
Tool run by home on so 16. 05. 2015 at 13:45:26,09.
Microsoft Windows 8.1 Pro 6.3.9600 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\home\Desktop\zoek.exe [Scan all users] [Script inserted]
==== System Restore Info ======================
16. 5. 2015 13:46:10 Zoek.exe System Restore Point Created Successfully.
==== Reset Hosts File ======================
# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host
127.0.0.1 localhost
==== Empty Folders Check ======================
C:\PROGRA~2\COMMON~1\Blizzard Entertainment deleted successfully
C:\PROGRA~3\DAEMON Tools Lite deleted successfully
C:\Users\home\AppData\Local\VirtualStore deleted successfully
==== Deleting CLSID Registry Keys ======================
==== Deleting CLSID Registry Values ======================
==== Deleting Services ======================
==== Deleting Files \ Folders ======================
C:\PROGRA~3\Package Cache deleted
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Search.lnk deleted
C:\Windows\SysNative\config\systemprofile\Searches deleted
C:\Users\home\AppData\Local\MSGBOX.EXE deleted
==== Chromium Look ======================
==== Chromium Startpages ======================
C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Preferences
"homepage": "http://www.google.cz/",
==== Set IE to Default ======================
Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://google.cz/"
New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://google.cz/"
==== All HKCU SearchScopes ======================
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
{012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTer ... ORM=IE8SRC"
==== Reset Google Chrome ======================
C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences was reset successfully
C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Web Data-journal was reset successfully
==== Empty IE Cache ======================
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\home\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\home\AppData\Local\Microsoft\Windows\INetCache\IE\I95NB0E0 will be deleted at reboot
C:\Users\home\AppData\Local\Microsoft\Windows\INetCache\IE\J5C1DE63 will be deleted at reboot
C:\Users\home\AppData\Local\Microsoft\Windows\INetCache\IE\Q79KS3E4 will be deleted at reboot
==== Empty FireFox Cache ======================
No FireFox Profiles found
==== Empty Chrome Cache ======================
C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
==== Empty All Flash Cache ======================
Flash Cache Emptied Successfully
==== Empty All Java Cache ======================
Java Cache cleared successfully
==== C:\zoek_backup content ======================
C:\zoek_backup (files=16 folders=16 14135208 bytes)
==== Empty Temp Folders ======================
C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\home\AppData\Local\Temp will be emptied at reboot
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp will be emptied at reboot
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Windows\Temp will be emptied at reboot
==== After Reboot ======================
==== Empty Temp Folders ======================
C:\Windows\Temp successfully emptied
C:\Users\home\AppData\Local\Temp successfully emptied
==== Empty Recycle Bin ======================
C:\$RECYCLE.BIN successfully emptied
==== Deleting Files / Folders ======================
"C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp\MpCmdRun.log" deleted
"C:\Users\home\AppData\Local\Microsoft\Windows\INetCache\IE\I95NB0E0" not found
"C:\Users\home\AppData\Local\Microsoft\Windows\INetCache\IE\J5C1DE63" not found
"C:\Users\home\AppData\Local\Microsoft\Windows\INetCache\IE\Q79KS3E4" not found
==== EOF on so 16. 05. 2015 at 13:56:20,43 ======================
Re: winnet32b inet32upd
Poprosim o novy log z FRST
Re: winnet32b inet32upd
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 16-05-2015 02
Ran by home (administrator) on PC on 16-05-2015 19:03:55
Running from C:\Users\home\Desktop
Loaded Profiles: home (Available profiles: home)
Platform: Windows 8.1 Pro (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
() C:\Windows\SysWOW64\ASGT.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(ASUS) C:\Program Files (x86)\ASUS\GPU Tweak\GPUTweak.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(ASUS) C:\Program Files (x86)\ASUS\GPU Tweak\Monitor.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Oracle Corporation) C:\Users\home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Photoshop CS5 Crack.exe
() C:\Users\home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\conhost32.exe
() C:\Users\home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\conhost64.exe
() C:\Users\home\AppData\Roaming\Microsoft\Networking\winnet32b.exe
() C:\Users\home\AppData\Roaming\Microsoft\Networking\inet32upd.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\Taskmgr.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2685072 2015-05-01] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7203032 2014-09-03] (Realtek Semiconductor)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [500208 2010-03-06] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AdobeCS5ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [406992 2010-02-22] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1022152 2014-12-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [334896 2015-04-30] (Oracle Corporation)
HKU\S-1-5-21-2893419502-1249477774-2242879243-1001\...\Run: [AdobeBridge] => [X]
HKU\S-1-5-21-2893419502-1249477774-2242879243-1001\...\RunOnce: [FlashPlayerUpdate] => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_17_0_0_169_pepper.exe [927920 2015-04-16] (Adobe Systems Incorporated)
Startup: C:\Users\home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Photoshop CS5 Crack.exe [2015-05-15] (Oracle Corporation)
Startup: C:\Users\home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\conhost32.exe [2015-05-15] ()
Startup: C:\Users\home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\conhost64.exe [2015-05-15] ()
Startup: C:\Users\home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Grand Theft Auto V (2015) + DLC's - FULL UNLOCKED - RETAIL.lnk [2015-04-21]
ShortcutTarget: Grand Theft Auto V (2015) + DLC's - FULL UNLOCKED - RETAIL.lnk -> C:\ProgramData\{f31b9353-e84d-146c-f31b-b9353e844d4f}\Grand Theft Auto V (2015) + DLC's - FULL UNLOCKED - RETAIL.exe (No File)
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKU\S-1-5-21-2893419502-1249477774-2242879243-1001\Software\Microsoft\Internet Explorer\Main,Start Page = http://google.cz/
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-2893419502-1249477774-2242879243-1001 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = http://www.google.com/search?q={searchTerms}
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dll [2015-05-15] (Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dll [2015-05-15] (Oracle Corporation)
Tcpip\..\Interfaces\{C1C6FDE8-6265-4941-B184-76F8227E6FE9}: [NameServer] 62.129.50.20,85.135.32.100
FireFox:
========
Ran by home (administrator) on PC on 16-05-2015 19:03:55
Running from C:\Users\home\Desktop
Loaded Profiles: home (Available profiles: home)
Platform: Windows 8.1 Pro (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
() C:\Windows\SysWOW64\ASGT.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(ASUS) C:\Program Files (x86)\ASUS\GPU Tweak\GPUTweak.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(ASUS) C:\Program Files (x86)\ASUS\GPU Tweak\Monitor.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Oracle Corporation) C:\Users\home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Photoshop CS5 Crack.exe
() C:\Users\home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\conhost32.exe
() C:\Users\home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\conhost64.exe
() C:\Users\home\AppData\Roaming\Microsoft\Networking\winnet32b.exe
() C:\Users\home\AppData\Roaming\Microsoft\Networking\inet32upd.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\Taskmgr.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2685072 2015-05-01] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7203032 2014-09-03] (Realtek Semiconductor)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [500208 2010-03-06] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AdobeCS5ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [406992 2010-02-22] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1022152 2014-12-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [334896 2015-04-30] (Oracle Corporation)
HKU\S-1-5-21-2893419502-1249477774-2242879243-1001\...\Run: [AdobeBridge] => [X]
HKU\S-1-5-21-2893419502-1249477774-2242879243-1001\...\RunOnce: [FlashPlayerUpdate] => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_17_0_0_169_pepper.exe [927920 2015-04-16] (Adobe Systems Incorporated)
Startup: C:\Users\home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Photoshop CS5 Crack.exe [2015-05-15] (Oracle Corporation)
Startup: C:\Users\home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\conhost32.exe [2015-05-15] ()
Startup: C:\Users\home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\conhost64.exe [2015-05-15] ()
Startup: C:\Users\home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Grand Theft Auto V (2015) + DLC's - FULL UNLOCKED - RETAIL.lnk [2015-04-21]
ShortcutTarget: Grand Theft Auto V (2015) + DLC's - FULL UNLOCKED - RETAIL.lnk -> C:\ProgramData\{f31b9353-e84d-146c-f31b-b9353e844d4f}\Grand Theft Auto V (2015) + DLC's - FULL UNLOCKED - RETAIL.exe (No File)
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKU\S-1-5-21-2893419502-1249477774-2242879243-1001\Software\Microsoft\Internet Explorer\Main,Start Page = http://google.cz/
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-2893419502-1249477774-2242879243-1001 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = http://www.google.com/search?q={searchTerms}
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dll [2015-05-15] (Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dll [2015-05-15] (Oracle Corporation)
Tcpip\..\Interfaces\{C1C6FDE8-6265-4941-B184-76F8227E6FE9}: [NameServer] 62.129.50.20,85.135.32.100
FireFox:
========
Re: winnet32b inet32upd
Děkuji za ochotu při odstraňování havěti a přeju hodně štěstí v boji proti virům
Re: winnet32b inet32upd
No jak myslite, ale o Baidu vime sve a neni to dobry, spise neduveryhodny, antivir...ale to je Vase vec...
Re: winnet32b inet32upd
chcete poslat FRST log po tom co jsem tu havět odstranil ?
Re: winnet32b inet32upd
Ano, spustte FRST a kliknete na Scan, logy sem pak nasypte



Přispějete na provoz fóra?